Security Advisory

CVE-2025-71077

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-01-13 15:31:29
Last updated 2026-06-11 18:44:05
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: tpm: Cap the number of PCR banks tpm2_get_pcr_allocation() does not cap any upper limit for the number of banks. Cap the limit to eight banks so that out of bounds values coming from external I/O cause on only limited harm.